Skip to main content

CVE-2023-4699

Description

Insufficient Verification of Data Authenticity vulnerability in Mitsubishi Electric Corporation MELSEC-F Series main modules and MELSEC iQ-F Series CPU modules allows a remote unauthenticated attacker to reset the memory of the products to factory default state and cause denial-of-service (DoS) condition on the products by sending specific packets.

Mitsubishi Electric Corporation
Severity: CRITICAL
CVE ID: CVE-2023-4699
CVSS Score: 9.1
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Refrence: NVDMITRE

Proof Of Concept

Scottzxor

This code functionally approximates the Citrix Bleed vulnerability (CVE-2023-4699).

Refrence: GitHub

Content on GitHub

soy-oreocato | watchers:1

CVE-2023-46998

Refrence: GitHub